Revisions of postgresql13

Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1224295 from Reinhard Max's avatar Reinhard Max (rmax) (revision 31)
- Upgrade to 13.17:
  * CVE-2024-10976, bsc#1233323: Ensure cached plans are marked as
    dependent on the calling role when RLS applies to a
    non-top-level table reference.
  * CVE-2024-10977, bsc#1233325: Make libpq discard error messages
    received during SSL or GSS protocol negotiation.
  * CVE-2024-10978, bsc#1233326: Fix unintended interactions
    between SET SESSION AUTHORIZATION and SET ROLE
  * CVE-2024-10979, bsc#1233327: Prevent trusted PL/Perl code from
    changing environment variables.
  * https://www.postgresql.org/about/news/p-2955/
  * https://www.postgresql.org/docs/release/13.17/

- Sync spec file from postgresql17.

  * https://www.postgresql.org/about/news/p-2910/
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1201984 from Marcus Rueckert's avatar Marcus Rueckert (darix) (revision 30)
- Upgrade to 13.16 (bsc#1229013):
  * bsc#1229013, CVE-2024-7348 PostgreSQL relation replacement
    during pg_dump executes arbitrary SQL
  * https://www.postgresql.org/about/news/postgresql-164-158-1413-1316-1220-and-17-beta-3-released-2910/
  * https://www.postgresql.org/docs/release/13.16/
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1172963 from Reinhard Max's avatar Reinhard Max (rmax) (revision 29)
- Upgrade to 13.15 (bsc#1224051):
  * Fix incompatibility with LLVM 18.
  * https://www.postgresql.org/docs/release/13.15/
- Prepare for PostgreSQL 17.
- Make sure all compilation and doc generation happens in %build.

- Require LLVM <= 17 for now, because LLVM 18 doesn't seem to work.

- Remove constraints file because improved memory usage for s390x

  * https://www.postgresql.org/docs/release/13.14/
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1145272 from Reinhard Max's avatar Reinhard Max (rmax) (revision 27)
- Upgrade to 13.14:
  * bsc#1219679, CVE-2024-0985: Tighten security restrictions
    within REFRESH MATERIALIZED VIEW CONCURRENTLY.
    One step of a concurrent refresh command was run under weak
    security restrictions. If a materialized view's owner could
    persuade a superuser or other high-privileged user to perform a
    concurrent refresh on that view, the view's owner could control
    code executed with the privileges of the user running REFRESH.
    Fix things so that all user-determined code is run as the
    view's owner, as expected
  * If you use GIN indexes, you may need to reindex after updating
    to this release.
  * LLVM 18 is now supported.
  * https://www.postgresql.org/docs/release/13.4/
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1124706 from Reinhard Max's avatar Reinhard Max (rmax) (revision 26)
November 2023 Security Updates
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1121433 from Reinhard Max's avatar Reinhard Max (rmax) (revision 25)
Revert last change and make the devel package independend
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1120252 from Reinhard Max's avatar Reinhard Max (rmax) (revision 24)
- boo#1216022: Call install-alternatives from the devel subpackage
  as well, otherwise the symlink for ecpg might be missing.

- Also buildignore the postgresql*-implementation symbols: this is
  needed in order to bootstrap when no postgresql version currently
  has valid symbols provided. Once the packages are built, OBS
  could translate this to the pgname-* packages and accept the
  ignores; during bootstrap though, there is nothing providing the
  symbol and the existing buildignores do not suffice.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1103351 from Reinhard Max's avatar Reinhard Max (rmax) (revision 23)
- Update to 13.12:
  * bsc#1214059, CVE-2023-39417: Disallow substituting a schema or
    owner name into an extension script if the name contains a
    quote, backslash, or dollar sign.
  * https://www.postgresql.org/docs/13/release-13-12.html

- Restore the independence of mini builds from the main build after
  the -mini name change from April 4, 2023.
- Adjust icu handling to prepare for PostgreSQL 16.

- Overhaul postgresql-README.SUSE and move it from the binary
  package to the noarch wrapper package.
- Change the unix domain socket location from /var/run to /run.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1086556 from Reinhard Max's avatar Reinhard Max (rmax) (revision 22)
- Update to 13.11:
  * bsc#1211228, CVE-2023-2454:
    Prevent CREATE SCHEMA from defeating changes in search_path
  * bsc#1211229, CVE-2023-2455: Enforce row-level security
    policies correctly after inlining a set-returning function
  * https://www.postgresql.org/about/news/2637/
  * https://www.postgresql.org/docs/13/release-13-11.html
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1081147 from Reinhard Max's avatar Reinhard Max (rmax) (revision 21)
- bsc#1210303: Stop using the obsolete internal %_restart_on_update
  macro and drop support for sysv init to simplify the scriptlets.

- Include -mini in Name: to avoid conflicts in the source package
  name and OBS internal dependency tracking.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1064056 from Reinhard Max's avatar Reinhard Max (rmax) (revision 20)
- Update to 13.10:
  * CVE-2022-41862, bsc#1208102: memory leak in libpq
  * https://www.postgresql.org/about/news/2592/
  * https://www.postgresql.org/docs/13/release-13-10.html
- Bump latest_supported_llvm_ver to 15.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1035217 from Reinhard Max's avatar Reinhard Max (rmax) (revision 19)
- bsc#1205300: Update to 13.9:
  * https://www.postgresql.org/about/news/2543/
  * https://www.postgresql.org/docs/13/release-13-9.html
- Sync spec file with postgresql15.
Richard Brown's avatar Richard Brown (RBrownFactory) accepted request 1006684 from Aaron Puchert's avatar Aaron Puchert (aaronpuchert) (revision 18)
- Create mechanism to specify the latest supported LLVM version.
  Automatically pin to that version if the distribution has a newer
  unsupported default version.
- Sync spec file with postgresql15.
- Disable LLVM JIT on riscv64
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 995184 from Reinhard Max's avatar Reinhard Max (rmax) (revision 17)
- Update to 13.8:
  * bsc#1202368, CVE-2022-2625: Extension scripts replace objects
    not belonging to the extension.
  * https://www.postgresql.org/docs/release/13.8/
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 977048 from Reinhard Max's avatar Reinhard Max (rmax) (revision 16)
- Upgrade to 13.7:
  * bsc#1199475, CVE-2022-1552: Confine additional operations
    within "security restricted operation" sandboxes.
  * https://www.postgresql.org/docs/13/release-13-7.html
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 969862 from Reinhard Max's avatar Reinhard Max (rmax) (revision 15)
- bsc#1198166: Pin to llvm13 until the next patchlevel update.

- bsc#1195680: Upgrade to 13.6:
  * https://www.postgresql.org/docs/13/release-13-6.html
  * Reindexing might be needed after applying this upgrade, so
    please read the release notes carefully.
- boo#1190740: Add constraints file with 12GB of memory for s390x
  as a workaround
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 935205 from Reinhard Max's avatar Reinhard Max (rmax) (revision 14)
- Add a llvmjit-devel subpackage to pull in the right versions
  of clang and llvm for building extensions. 
- Fix some mistakes in the interdependencies between the
  implementation packages and their noarch counterpart.
- Update the BuildIgnore section.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 930950 from Reinhard Max's avatar Reinhard Max (rmax) (revision 13)
- bsc#1192516: Upgrade to 13.5:
  * Make the server reject extraneous data after an SSL or GSS
    encryption handshake (CVE-2021-23214).
  * Make libpq reject extraneous data after an SSL or GSS
    encryption handshake (CVE-2021-23222).
  * https://www.postgresql.org/docs/13/release-13-4.html
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 923701 from Reinhard Max's avatar Reinhard Max (rmax) (revision 12)
- Stop building the mini and lib packages as they are now coming
  from postgresql14.
- Let genlists skip non-existing binaries to avoid lots of version
  conditionals in the file lists.
- Remove postgresql-testsuite-int8.sql.patch, because its purpose
  is unclear. This affects only the test subpackage.
Displaying revisions 1 - 20 of 31
openSUSE Build Service is sponsored by